Splunk Enterprise

Search History not loading on one node

PapayaPower
Observer

I've currently got an issue where my search history wont load on one particular search head. As far as I know, it's only affecting me. Our search heads are clustered, and it's only affecting 1 of the 3 nodes, we're currently on 9.3. When I try to load the search history it just says "Waiting for results...".

I can work around it, but it bothers me that it's something that's not working and I've not yet been able to solve.

Things I've tried:

  • Different browser of course.
  • Cluster status shows as being up to date and replication being A-OK.
  • Compared my KVStore across all three nodes and they appear identical.
  • Checked log files but I can't see anything obvious.

Most of the troubleshooting help I've found online all seems to assume you're using a single search head.

Looking for some inspiration on what to try next! 

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...